← Back to search Server uses network capabilities via: fetch(), http Server uses filesystem capabilities via: fs sync ops Server uses shell capabilities via: child_process, spawn() Server uses env_vars capabilities via: process.env
@mcp-browser-kit/server
An MCP server that enables AI assistants to interact with your local browsers.
npm
D
40 / 100
Versions
0.26073.30105-experimental.19latestJul 30, 2026
10.1.4Jul 28, 2026
10.1.0Jul 23, 2026
10.0.0Jul 20, 2026
0.26071.19201-experimental.92Jul 19, 2026
+ show 31 moreshow less
9.0.0Jun 30, 2026
0.26063.30171-experimental.41Jun 30, 2026
8.3.0Jun 18, 2026
8.2.0Jun 14, 2026
0.26061.14173-experimental.27Jun 14, 2026
8.1.0Jun 9, 2026
0.26060.99184-experimental.29Jun 9, 2026
8.0.0May 24, 2026
0.26052.22141-experimental.58May 22, 2026
7.0.5Apr 5, 2026
7.0.0Mar 23, 2026
0.26032.23195-experimental.18Mar 23, 2026
0.26032.23185-experimental.28Mar 23, 2026
0.26032.22172-exp-28Mar 22, 2026
0.26032.22104-30Mar 22, 2026
6.0.0Oct 21, 2025
5.0.2Jun 7, 2025
5.0.1May 2, 2025
5.0.0May 2, 2025
4.0.0Apr 9, 2025
3.0.1Apr 4, 2025
3.0.0Apr 4, 2025
2.0.0Apr 4, 2025
1.0.9Apr 3, 2025
1.0.8Apr 3, 2025
1.0.7Apr 3, 2025
1.0.6Apr 3, 2025
1.0.3Apr 3, 2025
1.0.2Apr 3, 2025
1.0.1Apr 3, 2025
1.0.0Apr 3, 2025
Tools 5
getContext annotations: verified low
readOnlyHint true openWorldHint true
getReadableText annotations: verified low
readOnlyHint true openWorldHint true
getReadableElements annotations: verified low
readOnlyHint true openWorldHint true
getReadableElementHtml annotations: verified low
readOnlyHint true openWorldHint true
getSnapshotPage annotations: verified low
readOnlyHint true openWorldHint true
Permissions 4
network medium filesystem low shell high env_vars low Scan Findings 50
medium
Suspicious package name: react-dom
medium
Suspicious package name: react-router
info
Tool 'getContext' annotations are consistent
info
Tool 'getReadableText' annotations are consistent
info
Tool 'getReadableElements' annotations are consistent
info
Tool 'getReadableElementHtml' annotations are consistent
info
Tool 'getSnapshotPage' annotations are consistent
medium
OAuth implementation without PKCE
info
Sandbox failed to start for behavioral verification
medium
Excessive dependency count: 64 direct dependencies
medium
Vulnerable dependency: nanoid@5.1.6 (GHSA-28wg-ghj8-5hjv)
medium
Vulnerable dependency: react-router@8.1.0 (GHSA-qwww-vcr4-c8h2)
medium
Vulnerable dependency: go.opentelemetry.io/otel@1.43.0 (GO-2026-5158)
medium
Vulnerable dependency: go.opentelemetry.io/otel/exporters/otlp/otlplog/otlploghttp@0.17.0 (GHSA-w8rr-5gcm-pp58)
medium
Vulnerable dependency: go.opentelemetry.io/otel/exporters/otlp/otlplog/otlploghttp@0.17.0 (GO-2026-4985)
medium
Vulnerable dependency: go.opentelemetry.io/otel/exporters/otlp/otlpmetric/otlpmetrichttp@1.41.0 (GHSA-w8rr-5gcm-pp58)
medium
Vulnerable dependency: go.opentelemetry.io/otel/exporters/otlp/otlpmetric/otlpmetrichttp@1.41.0 (GO-2026-4985)
medium
Vulnerable dependency: go.opentelemetry.io/otel/exporters/otlp/otlptrace/otlptracehttp@1.41.0 (GHSA-w8rr-5gcm-pp58)
medium
Vulnerable dependency: go.opentelemetry.io/otel/exporters/otlp/otlptrace/otlptracehttp@1.41.0 (GO-2026-4985)
medium
Vulnerable dependency: google.golang.org/grpc@1.79.3 (GHSA-hrxh-6v49-42gf)
medium
Vulnerable dependency: google.golang.org/grpc@1.79.3 (GO-2026-6061)
medium
Vulnerable dependency: golang.org/x/net@0.51.0 (GHSA-5cv4-jp36-h3mw)
medium
Vulnerable dependency: golang.org/x/net@0.51.0 (GO-2026-4918)
medium
Vulnerable dependency: golang.org/x/net@0.51.0 (GO-2026-5025)
medium
Vulnerable dependency: golang.org/x/net@0.51.0 (GO-2026-5026)
medium
Vulnerable dependency: golang.org/x/net@0.51.0 (GO-2026-5027)
medium
Vulnerable dependency: golang.org/x/net@0.51.0 (GO-2026-5028)
medium
Vulnerable dependency: golang.org/x/net@0.51.0 (GO-2026-5029)
medium
Vulnerable dependency: golang.org/x/net@0.51.0 (GO-2026-5030)
medium
Vulnerable dependency: golang.org/x/net@0.51.0 (GO-2026-5942)
medium
Vulnerable dependency: golang.org/x/sys@0.42.0 (GO-2026-5024)
medium
Vulnerable dependency: golang.org/x/text@0.34.0 (GO-2026-5970)
info
package.json metadata
info
Tool: getContext
info
Tool: getReadableText
info
Tool: getReadableElements
info
Tool: getReadableElementHtml
info
Tool: getSnapshotPage
info
Transport: streamable-http
info
Required env vars (11)
info
Sandbox failed to start for output poisoning scan
medium
Permission: network access detected
low
Permission: filesystem access detected
high
Permission: shell access detected
low
Permission: env_vars access detected
info
SBOM generated: 131 components
critical
AWS Access Key ID found in ndthanhdev-mcp-browser-kit-de1995a/.yarn/releases/yarn-4.17.1.cjs
high
Generic API Key Assignment found in ndthanhdev-mcp-browser-kit-de1995a/.yarn/releases/yarn-4.17.1.cjs
high
Hardcoded Password found in ndthanhdev-mcp-browser-kit-de1995a/.yarn/releases/yarn-4.17.1.cjs
medium
No build provenance detected (SLSA L0)